33,004 Topics
![]() | |
I had a little viruses attack on my computer. Did my best to get rid of them, but still some things, like Norton WMI Update, don't work. Would you be so kind to have a look in my Hjt log? (windows2000) Logfile of HijackThis v1.98.2 Scan saved at 12:23:12, on … | |
Have I been hijacked again? :o I was looking for a new desktop, and I'm not sure if I got hit. Here's my Log...thank you, for your help. Logfile of HijackThis v1.98.2 Scan saved at 4:24:08 PM, on 10/10/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 … | |
This is the contents of : HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI Windows Registry Editor Version 5.00 [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-.] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./01] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./012] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'(] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-.] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./01] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./012] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'(] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-.] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Enum\PCI\$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0123$%&'()*+,-./0] … | |
:-| I have a client that is having a major run-in with this nuisance that pops up with a blank window having just this message: sendExternalEvent('EVENT:IEBROWSER:www.ad-w-a-r-e.com/callback_ron.php?GUID={42C12A41-165F-11D9-86EB-444553540000}&bidid=5'); I installed AdAware SE, Spybot 1.3, AVG antivirus, scanned with Trend housecall with everything with the most current updates. In this machine, if you … | |
I cannot scandisk or defrag my computer because it freezes it. I have just reinstalled win 98se over itself again due to an explorer error upon start up. That seemed to do the trick but I still cannot defrag or scan. I am just trying to get everything straight here. … | |
i was wondering if there is a way to put a rules wizard into a logon script so a rule created by one person can be pushed to everyone over the network. everybody is running w2k pro on their desktops, we are running w2k server on all our servers with … | |
Hi. I have a Sony VAIO WinXP laptop that comes up with this msg everytime when I start the computer up: You (or a program) have requested information from sdcevents4.sel.sony.com. Which connection do you want to use? Does anyone know how I can stop this message? Note that I don't … | |
Ok, so i've ran both the most current version of adaware - and trendmicro's housecall - both in safe mode - and despite these efforts, as well as checking the registry for any odd entrys in /run - i am still having pop-up issues... can someone please examine my log? … | |
I am having a problem removing about:blank. Have tried Pest Patrol, Spybot, CWShredder and none have worked. I really need help! Here is my log. Logfile of HijackThis v1.98.2 Scan saved at 6:31:57 PM, on 9/22/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: … | |
Windows Xp service pack 2 I have the mouse finder thing ( I have no idea why)on where the mouse gets a circle around it when you press control for some reason everyone once in a while the mouse finder finds the mouse its not to bad but is it … | |
When i click to open Paint some error comes up telling me that it has performed and illegal operation...... The details are the following: MSPAINT caused an invalid page fault in module MFC42.DLL at 016f:6c37f9eb. Registers: EAX=00000000 CS=016f EIP=6c37f9eb EFLGS=00010202 EBX=00680c94 SS=0177 ESP=0056f91c EBP=0056f940 ECX=00007fff DS=0177 ESI=00691330 FS=1247 EDX=000163a4 ES=0177 … | |
I have Windows XP SP2, Toshiba laptop. Well, after doing some scans with spybot, and ad-ware, and after restarting my computer. I noticed mostly everything is appearing italicized(all this stuff I am typing is also italicized (for me)). I really don't know what happened, all of a sudden everything is … | |
I got a US robotics internal modem it worked fine about a month ago. Then I tried it to day and it says no dial tone, if I unplug the phone and plug it back in I get dial tone on the phone. If I try to dial out agian … | |
I was having problems with my monitor so I ordered a new NEC hooked it up and restarted the computer. Than I found out that it wasn't the monitor at all had the same real grainy bad color in the screen. So I figured it was the Video adapter. So … | |
Hi! I discovered today some links that I didn't save , are saved on my PC. This is the last Hijack logfile: Logfile of HijackThis v1.98.2 Scan saved at 20:40:07 PM, on 10/6/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe … | |
Logfile of HijackThis v1.98.2 Scan saved at 10:48:08 AM, on 10/13/2004 Platform: Windows XP (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 (6.00.2600.0000) Running processes: C:\WINNT\System32\smss.exe C:\WINNT\system32\winlogon.exe C:\WINNT\system32\services.exe C:\WINNT\system32\lsass.exe C:\WINNT\system32\svchost.exe C:\WINNT\System32\svchost.exe C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe C:\WINNT\system32\spoolsv.exe C:\WINNT\Explorer.EXE C:\PROGRA~1\Iomega\System32\AppServices.exe C:\WINNT\System32\hkcmd.exe C:\WINNT\System32\SK9910DM.EXE C:\WINNT\GWMDMMSG.exe C:\Program Files\Norton AntiVirus\navapsvc.exe C:\Program Files\Roxio\Easy CD Creator … | |
[i]Edit: Thanks to Dani for 'cleaning up' this topic a bit. Should any of our members have links to useful sites, or items of their own which they consider would make a useful addition to the contents here, please send them to one of the Security Forum moderators via PM … | |
I ran spybot, adaware, and disabled window blinds. Can anyone tell me wht I need to get rid of to make my computer work right again? :rolleyes: Thanks Logfile of HijackThis v1.98.2 Scan saved at 7:00:43 AM, on 10/9/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 … | |
I normally use firefox as my main browser but for some reason i opened internet explorer today. I havent used it since probably may and its almost certainly out of date security wise. Well after using it for less then 5 minutes i get 5 pop ups from AVG saying … | |
Hi, My brother's pc is recently hijacked. The error reads:- Error loading C:\Windows\Downloaded Program Files\bridge.dll. I've enclosed my hijackthis log as follows:- Thanks. Looking forward to ur earliest reply. Logfile of HijackThis v1.97.7 Scan saved at 7:43:56 PM, on 10/3/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 … | |
In windows word for windows xp service pack 2 mine starts with track changes on. This is very annoying can some one share with me on how to keep this from happening | |
Running Win 2K SP4. My problem is that when I click Start-Run... and type in a program name such as regedit, I get - "Cannot find the file 'regedit' (or one of its components). Make sure the path and filename are correct and that all required libraries are available." Yet … | |
hello when i sign into my msn it says this "WE ARE SORRY WE COULDNT SIGN YOU IN BECAUSE THE SIGN IN NAME OR PASSWORD IS INCORRECT OR DOESNT EXIST" what does this mean i know that i have the right password and sign in name. I went to sign … | |
I have a problem with a computer that didn't have a password and now it comes with the message abbout a system password. how I can get rid of it without knowing the one that's there. | |
[font=Arial][size=5][color=#0000ff][i][size=2][color=black][font=Verdana][color=black][i]I found this in a few different places around the 'net - hopefully it's helpful:[/i][/color][/font] [/color][/size][/i][/color][/size][/font][font=Arial][size=5][color=#0000ff]Schedule Tasks in Windows XP [/color][/size][/font][font=Arial][size=2][color=#000000]With Scheduled Tasks, you can schedule any script, program, or document to run at a time that is most convenient for you. Scheduled Tasks starts every time that you start … | |
when ever i run spybot S&D, some malware DSO EXPLOIT APPEARS. It comes back repeatedly whenever i run the scan and even after i fix it. please help | |
For some reason my explorer home page is locked meaning I do not have access to changing it. I have since upgraded my norton, run spybot and searched for the problem without success. Any ideas as to what is causing this and how to fix it? | |
I continue to get pop ups and I know I have to have spyware installed. I have panicware pop up stopper running, also use bho demon and cws and spybot s&d. I was hoping that if I post my HJT log I could get some help. I am at wits … | |
I think I fixed everything that was wrong with my computer, running Spybot S&D, Adaware and Mcafee virus scan, but I wanted to know if all the bad stuff was gone..Thanks Logfile of HijackThis v1.98.2 Scan saved at 10:36:47 PM, on 10/11/2004 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet … | |
I cannot go online on my other computer. It is a Windows XP with SP2. I have ad-aware scanned it, Giant AntiSpyware scan, SpyBot S&D, and even Nortron AntiVirus. I'd post the Hijack this log, but I cant go online on that pc to post it. Please help, I need … |
The End.